Data Managment Flashcards

(16 cards)

1
Q

What information and laws are relaven to data protection?

A

Data Protection Act 2018
Freedom of Information Act 2000
IS09001
UKGDPR
GDPR
ICO
RICS Eletronic Data Managment - GN (Superseded to Isurv)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the difference between GDPR, UKGDPR and DPA2018

A

GDPR introduced in 2018 and applies in EU
UKGDPR is the same but applies to UK, was retained when UK left EU and is updated for full application with UK Law
i.e ICO
DPA2018 - Supplements the UKGDPR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the principles of GDPR

A

Lawfullness, transparency, accuary, proportionality, security and accountability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the DPA2018?

A

Applies to all buisnesses that hadle data, supplements UK impletmention of UKGDPR

Sets out rights of indivials:

Access
Object
Erase
Inform
Portability
Rectify

Sets out obligations of firms:

Transparency
Accountability
Proportionality
Security
Intent
Accuary
Request

Sets out defintions of data controller and proccessor
ICO duties

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the ICO

A

Independant regulaotry body
Enforces DPA2018
Reviews register
Breaches must be reported to them within 72 hours

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the Freedom of Information Act 2000

A

Individuals have right to access data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are EMS?

A

Help companies to adhsre to DPA2018, different complexities

It includes numerous project folders
Allows collaberation
Version control
Recite issue
Drawing managment
Document retention

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Issues with EMS?

A

Access and copyright
Secuity
Confidentiality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the data process?

A

Data created, shared, managed, stored, access, reused, archived / deleted

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Examples of primary and secondary data?

A

Primary = reports

Secondary = BCIS, Planning, NBS and SPONS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Purpose of DPO?

A

Traning
Report breaches
Enforce data protection policy

Only mandatory for some organisations like public

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is BIM, and the pros and cons?

A

Building Information Managment System

Mandated for public sector projects to level 2 in 2016

  • Collect, store, manage, integrate data related to asset over lifecyle for improved collaberation amgost stakeholders, good for visualisation, but bad for portability cost and interoptability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Who are the parties inolved in GDPR

A

Data Subject
Data Controller
Data Processor
Data Protection Officer
Supervusory Authority

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What are the penalties under GDPR and why might they occur?

A

Not informing of breach
Not maintaining records
Not being transpartent, proportionate, secrure, mishandling

2 Tiers as some violations are more serverve than others
€10 million, or 2% of the firm’s worldwide annual revenue
fine of up to €20 million, or 4%

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What does the ICO do?

A
  • All organisations must register to ICO
  • Breaches reported within 72 hours
  • Maintains register
  • Offers training
  • Enforces DPA2018
  • Fine of 17m or 4%, 8.7m or 2%
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are the entities involved

A
  • Subject
  • Controller
  • Processor
  • Protection Officer
  • Statutory Body